For Incident Managers

Command the incident, not the tooling.

A break-glass coordination surface for the moments when Slack is flaky, the vault is unreachable, and the on-call you paged is not responding. Pre-incident playbooks, in-incident war room, post-incident disclosure — one platform, audit-grade.

11
Capabilities across the incident lifecycle
3
Phases — before, during, after
2+1
Independent compute clouds (Fly.io planned)
0
Tools you have to learn at 03:00

The problem

When an incident escalates, you are juggling Slack threads, phone calls, shared docs, password vaults, and an outdated wiki — and any of them might be part of the outage. Contact lists are stale. Escalation paths are improvised. The board, regulators, and customers each want a clean timeline, and you do not have one yet because you have been holding the response together with screen-sharing and sticky notes.

What Glassbreak gives you, by phase

Every capability has a defined moment in the incident lifecycle. Each card pairs the operational pressure with the concrete tool.

Before the incident4 capabilities

Call trees + escalation rules

What you need

When the primary on-call does not answer, every minute spent figuring out "who next?" is a minute the incident is unmanaged. The escalation order has to be defined before, not improvised at 03:00.

Glassbreak supplies

Per-team escalation chains with timeout + retry policy. SMS, email, and push delivery in parallel. Acknowledgement tracking shows who has actually seen the page.

Step-by-step playbooks

What you need

Crisis-time decision-making degrades. Playbooks must be runnable as concrete steps — not paragraphs of prose nobody reads under stress.

Glassbreak supplies

Structured incident documents with checkable steps, per-step approvals, and the secret / key references the step requires. Runs are auditable end-to-end.

Encrypted contact catalogue

What you need

Vendor account managers, legal counsel, board liaisons, regulator contacts, suppliers, insurance — the people you need to reach during an incident are scattered across CRM systems, personal phones, and stale spreadsheets.

Glassbreak supplies

End-to-end encrypted contact records, per-team and per-jurisdiction tagged, with blind-indexed search. Survives outages of the primary CRM.

Tabletop + simulation runs

What you need

Plans you have never executed are not plans. Regulators (DORA, FCA / PRA, APRA, MAS) increasingly expect documented exercise evidence.

Glassbreak supplies

Run a playbook in simulation mode — no real notifications, full audit trail of the steps a real run would have taken. The artefact you hand to the auditor.

During the incident4 capabilities

War room with cryptographic chat

What you need

A coordinated channel where every approval, every status update, and every decision is captured — without depending on Slack or Teams being up.

Glassbreak supplies

End-to-end encrypted per-conversation keys, message delivery via the Glassbreak mesh (independent of your corporate Slack), full transcript exportable.

Quorum break-glass for credentials

What you need

Production passwords, root admin accounts, DR site keys, certificate authority access — locked away normally, needed instantly under quorum during the worst moments.

Glassbreak supplies

Shamir-split team secrets (T-of-N where T ≥ 2). Approver decrypts share locally, re-encrypts for the requester. The platform never holds a usable key.

Emergency messaging across channels

What you need

During an outage, one channel is rarely enough. SMS, email, push, voice fallback — and a record of who got which.

Glassbreak supplies

Multi-channel emergency message broadcast with delivery receipts. Per-recipient acknowledgement tokens. Encrypted payloads end-to-end.

Real-time status + ownership

What you need

Who is the current incident commander? Which subsystem are they working on? Where in the playbook are we? Without a single view, parallel work duplicates.

Glassbreak supplies

Live status board: current commander, active step in each playbook run, owner per workstream, time since last update. Updates persist across vertical failover.

After the incident3 capabilities

Cryptographic timeline export

What you need

Every regulator now wants a defensible timeline within hours, not days. SEC 8-K (4 business days), GDPR (72 hours), MAS, APRA, DORA all measure time from "knew" not "investigated".

Glassbreak supplies

Every action — detection, escalation, approval, access grant, message sent — logged with cryptographic integrity. Exportable as PDF or JSON for the disclosure.

Structured lessons-learned

What you need

Post-incident reviews drift unless the structure forces honest reflection on what worked, what did not, and what changes for next time.

Glassbreak supplies

Template-driven review documents linked to the original incident timeline. Action items tracked as their own assignments with owners and due dates.

Coordinated regulatory disclosure

What you need

Multi-jurisdiction firms have to notify several supervisors in parallel within different windows. Coordinating those notifications without leaks or contradictions is itself a workflow.

Glassbreak supplies

Disclosure workspace: contact lists by jurisdiction, message templates per regulator, send-time logging. One coherent set of facts, multiple targeted notifications.

Why it works at 03:00

Tools built for sunny-day use fail on the rainy day. Glassbreak is designed for the rainy day from the architecture down.

Runs when nothing else does

Glassbreak operates on its own independent verticals (AWS + Scaleway, with Fly.io planned). A primary-stack outage does not take your incident command surface with it.

Zero-knowledge by design

Secrets, contacts, and messages are AES-256 encrypted on-device before transmission. Glassbreak cannot read any of it — and neither can a compromised provider.

No tool to learn at 03:00

The incident manager view is the same view used in rehearsals. Muscle memory from monthly tabletops carries directly into the real event.

Per-incident audit trail

Every approval, every grant, every message recorded with who / what / when / why. The post-mortem writes itself, and the regulator gets the same facts you do.

Works alongside PagerDuty / Opsgenie

Not a replacement for paging tools — a parallel break-glass surface. When PagerDuty is degraded, call trees + escalation here still page out via SMS / email / push.

Multi-cloud failover invisible

The Fastly-fronted api.glassbreak.io routes to whichever vertical is healthy; if one is down, traffic continues to the other. Your team sees one URL.

Rehearse before you need it

Free tier covers one team and five members — enough to load your playbooks, define a call tree, and run a tabletop simulation before committing your real incident programme.

Glassbreak is a break-glass coordination tool, not a replacement for your primary observability or paging stack. Run it alongside, not instead of, the systems you depend on day-to-day.

Stay Updated

Get product updates and security insights. No spam, unsubscribe anytime.

We respect your privacy. See our privacy policy.